3 Configuring the Switch

Figure 3-47 Configuring ACL Port Binding

CLI – This example assigns an IP access list to port 1, and an IP access list to port 3.

Console(config)#interface ethernet

1/1

4-116

Console(config-if)#ip access-group

david in

4-93

Console(config-if)#exit

1/3

 

Console(config)#interface ethernet

 

Console(config-if)#ip access-group

david in

 

Console(config-if)#

 

 

Filtering IP Addresses for Management Access

You create a list of up to 16 IP addresses or IP address groups that are allowed management access to the switch through the web interface, SNMP, or Telnet.

Command Usage

The management interfaces are open to all IP addresses by default. Once you add an entry to a filter list, access to that interface is restricted to the specified addresses.

If anyone tries to access a management interface on the switch from an invalid address, the switch will reject the connection, enter an event message in the system log, and send a trap message to the trap manager.

IP address can be configured for SNMP, web and Telnet access respectively. Each of these groups can include up to five different sets of addresses, either individual addresses or address ranges.

When entering addresses for the same group (i.e., SNMP, web or Telnet), the switch will not accept overlapping address ranges. When entering addresses for different groups, the switch will accept overlapping address ranges.

3-74

Page 118
Image 118
SMC Networks SMC8150L2 manual Filtering IP Addresses for Management Access, Configuring ACL Port Binding